Principal Authentication Services Engineer at 3M, leading IAM architecture and engineering initiatives. Expert in Zero Trust security and enterprise authentication solutions across a global environment.
Responsibilities
Own the engineering design, implementation, and operational health of Microsoft Entra ID, Active Directory, and federated identity services across the enterprise
Architect and maintain SSO integrations (SAML, OIDC, OAuth 2.0) across SaaS, on-prem, and hybrid application portfolios
Engineer and manage MFA policies, authentication method configurations, and phishing-resistant credential adoption (FIDO2, Windows Hello for Business, certificate-based auth)
Lead Conditional Access policy development, testing, and lifecycle governance
Define authentication standards, patterns, and reference architectures for new and existing applications -- and own keeping them current
Evaluate emerging authentication technologies and drive proof-of-concept efforts that inform roadmap decisions
Maintain technical documentation including architecture diagrams, decision records, and runbooks
Partner with Security Architecture to align authentication controls with Zero Trust principles and enterprise security policy
Support audit and compliance activities by providing technical evidence, control narratives, and remediation guidance
Identify gaps in authentication posture and lead engineering remediation efforts
Serve as escalation point for complex authentication incidents and engineering challenges
Mentor and uplift mid-level engineers on the Authentication Services team
Engage with application teams, infrastructure engineering, and security operations as a trusted IAM authority.
Requirements
Bachelor’s degree or higher (completed and verified prior to start)
Eight (8) years of experience designing, deploying, and managing enterprise Identity and Access Management (IAM) authentication solutions (e.g., Entra ID, Ping Identity, Active Directory) in a private, public, government or military environment
Five (5) years of experience working with modern authentication protocols, including SAML, OAuth 2.0, OpenID Connect (OIDC), and FIDO2 in a private, public, government or military environment
Five (5) years of experience leading complex architectural initiatives, conditional access hardening, or Zero Trust security programs in a private, public, government or military environment
Benefits
Medical, Dental & Vision
Health Savings Accounts
Health Care & Dependent Care Flexible Spending Accounts
Intermediate Scientist or Engineer focusing on radiological science in various nuclear projects. Collaborating on risk management and environmental impact assessments for the nuclear energy sector.
Intermediate Water Resources Engineer designing and managing drainage and stormwater systems for infrastructure projects. Collaborating with teams to ensure regulatory compliance and quality deliverables.
TOC Engineer responsible for operational IT tasks and ensuring end - user experience. Engaging with technologies from Cisco and Microsoft in global settings.
TEC Engineer providing 24x7 global remote technical support for DWDM/WDM platforms. Key role in troubleshooting optical network issues, leading product anomaly resolution.
VMware Virtualization Engineer maintaining critical virtual infrastructures at EOLEN. Join for projects in cloud, data, and cybersecurity within a stimulating technical environment.
Contributing to QHSE management improvement and optimizing business processes at renewable energy company. Collaborating with the QHSE team and ensuring compliance with quality and safety standards.
Project Engineer at Novartis handling critical site and global engineering projects and ensuring GMP compliance. Collaborating with cross - functional teams to solve complex engineering challenges.
Commissioning Engineer commissioning Security Systems such as Intruder Alarms at Johnson Controls. Focused on providing exceptional customer service and working within a high performing team.
Senior Emulation Engineer developing complex multi - chiplet CPUs at SiPearl. Leading teams and driving emulation strategies for high - performance computing.
PDK Engineer working with cross - functional teams at Pragmatic Semiconductor. Focusing on the design, development, maintenance, and testing of Process Design Kits in Cambridge.